Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Charles_Cranefi
Participant

HTTPS Inspection MacOS

Problem:

We have enabled HTTPS inspection on our network via our Checkpoint blades, all is working just fine apart from inspection of MacOS traffic.
Our certificates are trusted system wide and work for most applications, including Safari but Apple applications like iCloud, iMessage, AppStore etc do not work. I believe this is due to certificate pinning.

Error with AppStore

iCloud Error


An obvious solution would be excluding Apple IPs from inspection but we cant because Apple uses the Akamai CDN and therefore the IPs change almost hourly.

Does anybody here have a solution? Is there a way to somehow efficiently whitelist Apples IPs?

Thank you!

Trusted certs in the system keychain

0 Kudos
10 Replies
This widget could not be displayed.